Find Jobs
Find Jobs Near You – Available Work in Your Location
TS / SCI cleared Cyber Real Time Analyst
Job Description
TS / SCI
cleared Cyber Real Time Analyst Honolulu, HI, US
• Posted 1 day ago
• Updated 5 hours ago Contract W2 On-site USD $56.00 - 81.00 per hour Fitment Dice Job Match Score™ 🔢 Crunching numbers... Job Details Skills PEARL Continuous Monitoring Incident Management Auditing SD Sensors Security Clearance Management System On A Chip Security Operations Real-time Intrusion Detection SIEM Elasticsearch Kibana Writing JIRA Workflow Management Network Protocols
TCP/IP UDP ICMP
Border Gateway Protocol Dragon NaturallySpeaking DNS TLS Inspection Wireshark Tcpdump Certified Ethical Hacker Security+ DoD SIPRNet JWICS Palo Alto Available-to-promise PEARL Continuous Monitoring Incident Management Auditing SD Sensors Security Clearance Management System On A Chip Security Operations Real-time Intrusion Detection SIEM Elasticsearch Kibana Writing JIRA Workflow Management Network Protocols
TCP/IP UDP ICMP
Border Gateway Protocol Dragon NaturallySpeaking DNS TLS Inspection Wireshark Tcpdump Certified Ethical Hacker Security+ DoD SIPRNet JWICS Palo Alto Available-to-promise Summary Our client, a leading Government Systems Integrator, is in need of a
TS / SCI
cleared Cyber Real Time Analyst for initial 12 month contract onsite in Pearl Harbor, HI. The Cyber Real Time Analyst will be working on a defensive cyber operations team that provides front-line threat detection, continuous monitoring and incident response for the customers multi-level classified operational environment. The Cyber Real Time Analyst will be responsible for performing real-time triage, manual and automated event correlation, syslog audits, anomaly detection across over 30 active operation nodes (including SD-WANs), helping to establish and mature standup and sustainment operations, tune advanced sensors (Corelight and Elastic Defend) and author novel behavioral threat hunting playbooks.
Required Skills:
Must have an active
TS / SCI
clearance. At least 4 years of experience of direct SOC and / or defensive cyber operations and a bachelors degree. Prior experience working in a live 24/7/365 Security Operations Center conducting real-time event correlation, alert triage and intrusion analysis. Experience using SIEM platforms to include, Elasticsearch, Logstash, Kibana (ELK Stack) / Elastic Defend, with proficiency in writing KQL queries and interpreting alerts. Experience using JIRA for ticket workflow management, incident intake and task tracking. Understanding of network protocols (TCP / IP, UDP, ICMP, BGP, DNS, TLS), packet inspection tools (Wireshark, tcpdump) and syslog parsing. Must hold a valid certification or degree meeting
DOD 8140.03 / DCWF
Work Role Code 532 Cyber Defense Incident Responder (at the intermediate proficiency level) prior to being onsite. Any of the following certifications, CySA+, GIAC
CGTI, EC-C
CEH, CND, Security+, etc. Preferred or Nice to
Have Skills:
Prior experience defending DOD networks across SIPRNet or
TS / SCI / JWICS
enclaves. Experience with Darktrace MDR and / or Palo Alto Advanced Threat Prevention (ATP) logs. ClearBridge Technology Group is an Equal Opportunity Employer. The expected hourly rate range for this role is $56 - 81 / hr The posted range is an estimate, the actual compensation offer will be based on the candidate's experience, skills, qualifications and will be in line with internal equity. Employers have access to artificial intelligence language tools ("AI") that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Dice Id:
10121117
Position Id:
19295 Posted 1 day ago